CVE-2022-26083

Generation of weak initialization vector in an Intel(R) IPP Cryptography software library before version 2021.5 may allow an unauthenticated user to potentially enable information disclosure via local access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:intel:integrated_performance_primitives_cryptography:*:*:*:*:*:*:*:*

History

02 Sep 2025, 15:35

Type Values Removed Values Added
First Time Intel integrated Performance Primitives Cryptography
Intel
CPE cpe:2.3:a:intel:integrated_performance_primitives_cryptography:*:*:*:*:*:*:*:*
Summary
  • (es) La generación de un vector de inicialización débil en una librería de software de criptografía Intel(R) IPP anterior a la versión 2021.5 puede permitir que un usuario no autenticado habilite potencialmente la divulgación de información a través del acceso local.
References () https://intel.com/content/www/us/en/security-center/advisory/intel-sa-00667.html - () https://intel.com/content/www/us/en/security-center/advisory/intel-sa-00667.html - Vendor Advisory

14 Feb 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-14 21:15

Updated : 2025-09-02 15:35


NVD link : CVE-2022-26083

Mitre link : CVE-2022-26083

CVE.ORG link : CVE-2022-26083


JSON object : View

Products Affected

intel

  • integrated_performance_primitives_cryptography
CWE
CWE-1204

Generation of Weak Initialization Vector (IV)